Operation Manual – AAA RADIUS HWTACACSH3C S7500E Series Ethernet Switches Table of ContentsiTable of ContentsChapter 1 AAA/RADIUS/HWTACACS Configuration ................................................................. 1-11.1 AAA/RADIUS/HWTACACS Overview ............................................................................... 1-11.1.1 Introduction to AAA ................................................................................................. 1-11.1.2 Introduction to RADIUS........................................................................................... 1-31.1.3 Introduction to HWTACACS.................................................................................... 1-91.1.4 Protocols and Standards....................................................................................... 1-111.2 AAA/RADIUS/HWTACACS Configuration Task List ....................................................... 1-121.3 Configuring AAA .............................................................................................................. 1-131.3.1 Configuration Prerequisites................................................................................... 1-131.3.2 Creating an ISP Domain ....................................................................................... 1-141.3.3 Configuring ISP Domain Attributes ....................................................................... 1-141.3.4 Configuring an AAA Authentication Scheme for an ISP Domain.......................... 1-151.3.5 Configuring an AAA Authorization Scheme for an ISP Domain............................ 1-171.3.6 Configuring an AAA Accounting Scheme for an ISP Domain............................... 1-181.3.7 Configuring Local User Attributes ......................................................................... 1-201.3.8 Tearing down User Connections Forcibly ............................................................. 1-221.4 Configuring RADIUS........................................................................................................ 1-231.4.1 Creating a RADIUS Scheme................................................................................. 1-231.4.2 Specifying the RADIUS Authentication/Authorization Servers ............................. 1-241.4.3 Configuring the RADIUS Accounting Servers and Relevant Parameters............. 1-241.4.4 Setting the Shared Key for RADIUS Packets ....................................................... 1-261.4.5 Setting the Maximum Number of RADIUS Request Retransmission Attempts ......... 1-261.4.6 Setting the Supported RADIUS Server Type ........................................................ 1-271.4.7 Setting the Status of RADIUS Servers.................................................................. 1-271.4.8 Configuring Attributes Related to the Data Sent to the RADIUS Server............... 1-281.4.9 Setting Timers Regarding RADIUS Servers ......................................................... 1-301.4.10 Specifying Security Policy Servers...................................................................... 1-311.4.11 Enabling the Listening Port of the RADIUS Client .............................................. 1-321.5 Configuring HWTACACS................................................................................................. 1-321.5.1 Creating a HWTACAS scheme ............................................................................. 1-321.5.2 Specifying the HWTACACS Authentication Servers............................................. 1-331.5.3 Specifying the HWTACACS Authorization Servers .............................................. 1-331.5.4 Specifying the HWTACACS Accounting Servers.................................................. 1-341.5.5 Setting the Shared Key for HWTACACS Packets ................................................ 1-351.5.6 Configuring Attributes Related to the Data Sent to the HWTACACS server ........ 1-351.5.7 Setting Timers Regarding HWTACACS Servers .................................................. 1-361.6 Displaying and Maintaining AAA/RADIUS/HWTACACS ................................................. 1-371.6.1 Displaying and Maintaining AAA ........................................................................... 1-37